Stránka 1 z 1

Špatnĕ funkční ntb

Napsal: 01 čer 2016 16:22
od Nela_M
    Dobrý den, prosím o kontrolu logu. Mám pocit, že je něco špatně. Nejdou přehrát videa, po vypnutí PC se ztratí připojení k wifi a musím restartovat wifi, protože jí notebook nevidí. Díky moc :-)

    Logfile of random's system information tool 1.10 (written by random/random)
    Run by Helenka at 2016-06-01 17:18:44
    Microsoft Windows 8.1
    System drive C: has 875 GB (92%) free of 953 GB
    Total RAM: 5578 MB (69% free)

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 17:18:46, on 1. 6. 2016
    Platform: Unknown Windows (WinNT 6.02.1008)
    MSIE: Internet Explorer v11.0 (11.00.9600.18123)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Launch Manager\LManager.exe
    C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
    C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
    C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
    C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
    C:\Program Files (x86)\MKVTOAVI\mkvtoavi.exe
    C:\WINDOWS\SysWOW64\NOTEPAD.EXE
    C:\Users\Helenka\Downloads\RSIT.exe
    C:\Program Files (x86)\trend micro\Helenka.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=userinit.exe,
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
    O4 - HKLM\..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
    O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [Lightshot] C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe
    O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
    O4 - Global Startup: Acer Backup Manager Tray.lnk = C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
    O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
    O23 - Service: McAfee Application Installer Cleanup (0199931464199963) (0199931464199963mcinstcleanup) - McAfee, Inc. - C:\Users\Helenka\AppData\Local\Temp\019993~1.EXE
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
    O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
    O23 - Service: Conexant Audio Message Service (CxAudMsg) - Unknown owner - C:\Windows\system32\CxAudMsg64.exe (file missing)
    O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
    O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
    O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
    O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
    O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
    O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
    O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
    O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
    O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
    O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 9296 bytes

    ======Scheduled tasks folder======

    C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
    C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
    C:\WINDOWS\tasks\update-S-1-5-21-2520944081-2684202109-2728405321-1001.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate
    C:\WINDOWS\tasks\update-sys.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
    Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-19 460384]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
    Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-19 172640]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "LManager"= []
    "AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-09-26 373592]
    "Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2012-08-15 2994880]
    "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-01-29 594992]
    "Lightshot"=C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [2014-10-16 226560]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    "BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-01-28 132736]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-03-11 8686296]
    "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-03-12 153136]

    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    Acer Backup Manager Tray.lnk - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcapexe]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "DisableCAD"=1
    "DisableTaskMgr"=0

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "TaskbarNoNotification"=1
    "HideSCAHealth"=1

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "TaskbarNoNotification"=1
    "HideSCAHealth"=1
    "NoRun"=0
    "NoFolderOptions"=0

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
    "msacm.msgsm610"=msgsm32.acm
    "msacm.msg711"=msg711.acm
    "msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
    "vidc.yuy2"=msyuv.dll
    "vidc.i420"=iyuv_32.dll
    "vidc.cvid"=iccvid.dll
    "vidc.yvyu"=msyuv.dll
    "vidc.yvu9"=tsbyuv.dll
    "wavemapper"=msacm32.drv
    "midimapper"=midimap.dll
    "vidc.uyvy"=msyuv.dll
    "msacm.imaadpcm"=imaadp32.acm
    "msacm.msadpcm"=msadp32.acm
    "vidc.iyuv"=iyuv_32.dll
    "vidc.mrle"=msrle32.dll
    "vidc.msvc"=msvidc32.dll
    "wave"=wdmaud.drv
    "midi"=wdmaud.drv
    "mixer"=wdmaud.drv
    "aux"=wdmaud.drv
    "wave1"=wdmaud.drv
    "midi1"=wdmaud.drv
    "mixer1"=wdmaud.drv
    "aux1"=wdmaud.drv
    "wave2"=wdmaud.drv
    "mixer2"=wdmaud.drv
    "midi2"=wdmaud.drv
    "msacm.l3codecp"=l3codecp.acm
    "vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
    "vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll

    ======File associations======

    .js - edit - C:\Windows\System32\Notepad.exe %1
    .js - open - C:\Windows\System32\WScript.exe "%1" %*

    ======List of files/folders created in the last 1 month======

    2016-06-01 17:15:41 ----D---- C:\rsit
    2016-06-01 17:15:41 ----D---- C:\Program Files (x86)\trend micro
    2016-06-01 16:59:35 ----D---- C:\Users\Helenka\AppData\Roaming\Mediatronic
    2016-06-01 16:52:28 ----D---- C:\Program Files (x86)\MKVTOAVI
    2016-05-30 18:21:55 ----HD---- C:\Program Files (x86)\Common Files\EAInstaller
    2016-05-30 18:21:54 ----A---- C:\WINDOWS\SysWOW64\vp6vfw.dll
    2016-05-30 17:34:07 ----D---- C:\Hry
    2016-05-24 16:32:13 ----A---- C:\WINDOWS\SysWOW64\rpcrt4.dll
    2016-05-24 16:32:03 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
    2016-05-24 16:31:59 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
    2016-05-24 16:31:58 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
    2016-05-24 16:31:57 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
    2016-05-24 16:31:57 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
    2016-05-24 16:31:56 ----A---- C:\WINDOWS\SysWOW64\vbscript.dll
    2016-05-24 16:31:56 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
    2016-05-24 16:31:56 ----A---- C:\WINDOWS\SysWOW64\jscript.dll
    2016-05-24 16:31:55 ----A---- C:\WINDOWS\SysWOW64\webcheck.dll
    2016-05-24 16:31:55 ----A---- C:\WINDOWS\SysWOW64\jscript9.dll
    2016-05-24 16:31:55 ----A---- C:\WINDOWS\SysWOW64\iedkcs32.dll
    2016-05-24 16:31:54 ----A---- C:\WINDOWS\SysWOW64\inetcomm.dll
    2016-05-24 16:31:54 ----A---- C:\WINDOWS\SysWOW64\ieapfltr.dll
    2016-05-24 16:30:07 ----A---- C:\WINDOWS\SysWOW64\schannel.dll
    2016-05-24 16:30:07 ----A---- C:\WINDOWS\SysWOW64\ncrypt.dll
    2016-05-24 16:30:07 ----A---- C:\WINDOWS\SysWOW64\certcli.dll
    2016-05-24 16:30:04 ----A---- C:\WINDOWS\SysWOW64\WindowsCodecs.dll
    2016-05-24 16:30:04 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.dll
    2016-05-24 16:29:51 ----A---- C:\WINDOWS\SysWOW64\gdi32.dll
    2016-05-24 16:29:51 ----A---- C:\WINDOWS\SysWOW64\d3d10level9.dll
    2016-05-18 18:55:18 ----A---- C:\WINDOWS\SysWOW64\dsparse.dll
    2016-05-18 18:54:55 ----A---- C:\WINDOWS\SysWOW64\shacct.dll
    2016-05-18 18:54:53 ----A---- C:\WINDOWS\SysWOW64\rdpcore.dll
    2016-05-18 18:54:45 ----A---- C:\WINDOWS\SysWOW64\msv1_0.dll
    2016-05-18 18:54:37 ----A---- C:\WINDOWS\SysWOW64\webio.dll
    2016-05-18 18:54:37 ----A---- C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
    2016-05-04 17:36:58 ----D---- C:\Program Files (x86)\SourceTec
    2016-05-04 17:12:11 ----D---- C:\Program Files (x86)\Skillbrains

    ======List of files/folders modified in the last 1 month======

    2016-06-01 17:18:31 ----D---- C:\Users\Helenka\AppData\Roaming\uTorrent
    2016-06-01 17:18:24 ----D---- C:\Users\Helenka\AppData\Roaming\Ahead
    2016-06-01 17:17:52 ----D---- C:\WINDOWS\Prefetch
    2016-06-01 17:17:00 ----D---- C:\WINDOWS\Temp
    2016-06-01 17:16:24 ----RD---- C:\Program Files (x86)
    2016-06-01 16:51:18 ----D---- C:\WINDOWS\System32
    2016-06-01 16:51:18 ----D---- C:\WINDOWS\Inf
    2016-06-01 16:43:04 ----D---- C:\WINDOWS\AppReadiness
    2016-05-30 18:21:55 ----D---- C:\Program Files (x86)\Common Files
    2016-05-30 18:21:54 ----D---- C:\WINDOWS\SysWOW64
    2016-05-30 18:21:53 ----SHD---- C:\WINDOWS\Installer
    2016-05-30 18:21:50 ----D---- C:\ProgramData\Package Cache
    2016-05-30 18:21:25 ----RSD---- C:\WINDOWS\Fonts
    2016-05-30 15:43:40 ----D---- C:\WINDOWS\Microsoft.NET
    2016-05-30 15:21:20 ----D---- C:\WINDOWS\CbsTemp
    2016-05-30 15:17:41 ----D---- C:\WINDOWS\WinSxS
    2016-05-30 15:17:16 ----SHD---- C:\System Volume Information
    2016-05-25 20:24:20 ----RD---- C:\Program Files
    2016-05-25 20:24:19 ----D---- C:\ProgramData\Intel Security
    2016-05-25 20:22:14 ----HD---- C:\ProgramData
    2016-05-25 20:19:53 ----HD---- C:\WINDOWS\ELAMBKUP
    2016-05-25 20:00:32 ----D---- C:\WINDOWS\debug
    2016-05-24 17:53:44 ----D---- C:\WINDOWS\rescache
    2016-05-24 17:49:53 ----RSD---- C:\WINDOWS\assembly
    2016-05-24 17:09:02 ----D---- C:\Program Files (x86)\Internet Explorer
    2016-05-24 16:42:02 ----D---- C:\WINDOWS\SysWOW64\cs-CZ
    2016-05-24 16:14:49 ----D---- C:\WINDOWS\SysWOW64\wbem
    2016-05-19 13:43:55 ----HD---- C:\OEM
    2016-05-18 20:28:29 ----D---- C:\Dolby PCEE4
    2016-05-15 12:33:24 ----D---- C:\WINDOWS\Tasks
    2016-05-15 12:11:55 ----D---- C:\Users\Helenka\AppData\Roaming\MMFApplications
    2016-05-11 22:08:17 ----A---- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
    2016-05-06 09:09:07 ----SD---- C:\WINDOWS\SysWOW64\GWX

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 amdkmpfd;@oem25.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys []
    R1 ccSet_NARA;NARA Settings Manager; C:\WINDOWS\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys []
    R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys []
    R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys []
    R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys []
    R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys []
    R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys []
    R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys []
    R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys []
    R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys []
    R3 AthBTPort;@oem8.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys []
    R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys []
    R3 AtiHDAudioService;@oem17.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys []
    R3 BTATH_A2DP;@oem7.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys []
    R3 btath_avdt;@oem7.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys []
    R3 BTATH_BUS;@oem4.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys []
    R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys []
    R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys []
    R3 BTATH_RCP;@oem15.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys []
    R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys []
    R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys []
    R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys []
    R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys []
    R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys []
    R3 CnxtHdAudService;@oem22.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys []
    R3 ETD;@oem21.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys []
    R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys []
    R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys []
    R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys []
    R3 Ps2Kb2Hid;@oem20.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys []
    R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys []
    R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys []
    R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys []
    R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys []
    R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys []
    S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys []
    S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys []

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
    R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe []
    R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2016-03-02 83768]
    R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2013-01-28 227456]
    R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
    R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2012-10-25 2449552]
    R2 CxAudMsg;Conexant Audio Message Service; C:\Windows\system32\CxAudMsg64.exe []
    R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 33088]
    R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-08-21 348784]
    R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2012-08-15 3943104]
    R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2012-11-03 259136]
    R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2016-03-18 93296]
    R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2012-10-23 658064]
    R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
    S2 0199931464199963mcinstcleanup;McAfee Application Installer Cleanup (0199931464199963); C:\Users\Helenka\AppData\Local\Temp\019993~1.EXE [2016-03-02 922152]
    S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-19 154440]
    S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 33088]
    S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-11-16 469648]
    S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2012-07-12 174160]
    S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2016-03-18 655624]
    S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
    S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
    S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-19 154440]
    S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-09-12 643856]
    S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
    S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

    -----------------EOF-----------------

    Re: Špatnĕ funkční ntb

    Napsal: 01 čer 2016 18:17
    od Rudy
    Zdravím!
    Spusťte tuto utilitu:
    Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
    Uložte na plochu
    Ukončete všechny programy
    Klikněte nejprve na >Scan< a pak na >Clean<.
    Proběhne skenováni a pak se objeví log, který sem vložte.

    Re: Špatnĕ funkční ntb

    Napsal: 01 čer 2016 18:40
    od Nela_M
    Zdravím Rudy, děkuji. Adwcleaner nic nenašel :-(

    # AdwCleaner v5.119 - Log vytvořen 01/06/2016 v 19:40:14
    # Aktualizováno 30/05/2016 by Xplode
    # Databáze : 2016-05-30.3 [Server]
    # Operační system : Windows 8.1 (X64)
    # Uživatelské jméno : Helenka - DOMA
    # Spuštěno z : C:\Users\Helenka\Desktop\adwcleaner_5.119.exe
    # Nastavení : Čištění
    # Podpora : http://toolslib.net/forum

    ***** [ Služby ] *****


    ***** [ Složky ] *****


    ***** [ Soubory ] *****


    ***** [ DLLs ] *****


    ***** [ WMI ] *****


    ***** [ Zástupci ] *****


    ***** [ Naplánované úlohy ] *****


    ***** [ Registry ] *****


    ***** [ Prohlížeče ] *****


    *************************

    :: "Tracing" klíče smazány
    :: Nastavení Winsock vyčištěno

    *************************

    C:\AdwCleaner\AdwCleaner[C1].txt - [963 bytů] - [31/03/2016 19:09:32]
    C:\AdwCleaner\AdwCleaner[C2].txt - [826 bytů] - [01/06/2016 19:40:14]
    C:\AdwCleaner\AdwCleaner[S1].txt - [784 bytů] - [31/03/2016 19:06:57]
    C:\AdwCleaner\AdwCleaner[S2].txt - [944 bytů] - [01/06/2016 17:26:21]
    C:\AdwCleaner\AdwCleaner[S3].txt - [1014 bytů] - [01/06/2016 19:36:28]

    ########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1115 bytů] ##########

    Re: Špatnĕ funkční ntb

    Napsal: 01 čer 2016 19:37
    od Rudy
    Toto je OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
    :files
    C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "SunJavaUpdateSched"=-

    :services
    Bonjour Service

    :commands
    [Purity]
    [Emptytemp]
    [Emptyflash]
    a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

    Re: Špatnĕ funkční ntb

    Napsal: 01 čer 2016 20:18
    od Nela_M
    Logfile of random's system information tool 1.10 (written by random/random)
    Run by Helenka at 2016-06-01 21:16:05
    Microsoft Windows 8.1
    System drive C: has 883 GB (93%) free of 953 GB
    Total RAM: 5578 MB (80% free)

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 21:16:11, on 1. 6. 2016
    Platform: Unknown Windows (WinNT 6.02.1008)
    MSIE: Internet Explorer v11.0 (11.00.9600.18123)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Launch Manager\LManager.exe
    C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
    C:\Program Files (x86)\Skillbrains\lightshot\5.3.0.0\Lightshot.exe
    C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
    C:\Users\Helenka\Downloads\RSIT.exe
    C:\Program Files (x86)\trend micro\Helenka.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=userinit.exe,
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
    O4 - HKLM\..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
    O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
    O4 - HKLM\..\Run: [Lightshot] C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe
    O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
    O4 - Global Startup: Acer Backup Manager Tray.lnk = C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
    O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
    O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
    O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
    O23 - Service: Conexant Audio Message Service (CxAudMsg) - Unknown owner - C:\Windows\system32\CxAudMsg64.exe (file missing)
    O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
    O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
    O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
    O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
    O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
    O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
    O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
    O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
    O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
    O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 8691 bytes

    ======Scheduled tasks folder======

    C:\WINDOWS\tasks\update-S-1-5-21-2520944081-2684202109-2728405321-1001.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate
    C:\WINDOWS\tasks\update-sys.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
    Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-19 460384]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
    Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-19 172640]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "LManager"= []
    "AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-09-26 373592]
    "Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2012-08-15 2994880]
    "Lightshot"=C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [2014-10-16 226560]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    "BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-01-28 132736]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-03-11 8686296]
    "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-03-12 153136]

    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    Acer Backup Manager Tray.lnk - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcapexe]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "DisableCAD"=1
    "DisableTaskMgr"=0

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "TaskbarNoNotification"=1
    "HideSCAHealth"=1

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "TaskbarNoNotification"=1
    "HideSCAHealth"=1
    "NoRun"=0
    "NoFolderOptions"=0

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
    "msacm.msgsm610"=msgsm32.acm
    "msacm.msg711"=msg711.acm
    "msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
    "vidc.yuy2"=msyuv.dll
    "vidc.i420"=iyuv_32.dll
    "vidc.cvid"=iccvid.dll
    "vidc.yvyu"=msyuv.dll
    "vidc.yvu9"=tsbyuv.dll
    "wavemapper"=msacm32.drv
    "midimapper"=midimap.dll
    "vidc.uyvy"=msyuv.dll
    "msacm.imaadpcm"=imaadp32.acm
    "msacm.msadpcm"=msadp32.acm
    "vidc.iyuv"=iyuv_32.dll
    "vidc.mrle"=msrle32.dll
    "vidc.msvc"=msvidc32.dll
    "wave"=wdmaud.drv
    "midi"=wdmaud.drv
    "mixer"=wdmaud.drv
    "aux"=wdmaud.drv
    "wave1"=wdmaud.drv
    "midi1"=wdmaud.drv
    "mixer1"=wdmaud.drv
    "aux1"=wdmaud.drv
    "wave2"=wdmaud.drv
    "mixer2"=wdmaud.drv
    "midi2"=wdmaud.drv
    "msacm.l3codecp"=l3codecp.acm
    "vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
    "vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll

    ======File associations======

    .js - edit - C:\Windows\System32\Notepad.exe %1
    .js - open - C:\Windows\System32\WScript.exe "%1" %*

    ======List of files/folders created in the last 1 month======

    2016-06-01 21:12:58 ----D---- C:\_OTM
    2016-06-01 17:15:41 ----D---- C:\rsit
    2016-06-01 17:15:41 ----D---- C:\Program Files (x86)\trend micro
    2016-06-01 16:59:35 ----D---- C:\Users\Helenka\AppData\Roaming\Mediatronic
    2016-06-01 16:52:28 ----D---- C:\Program Files (x86)\MKVTOAVI
    2016-05-30 18:21:55 ----HD---- C:\Program Files (x86)\Common Files\EAInstaller
    2016-05-30 18:21:54 ----A---- C:\WINDOWS\SysWOW64\vp6vfw.dll
    2016-05-30 17:34:07 ----D---- C:\Hry
    2016-05-24 16:32:13 ----A---- C:\WINDOWS\SysWOW64\rpcrt4.dll
    2016-05-24 16:32:03 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
    2016-05-24 16:31:59 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
    2016-05-24 16:31:58 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
    2016-05-24 16:31:57 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
    2016-05-24 16:31:57 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
    2016-05-24 16:31:56 ----A---- C:\WINDOWS\SysWOW64\vbscript.dll
    2016-05-24 16:31:56 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
    2016-05-24 16:31:56 ----A---- C:\WINDOWS\SysWOW64\jscript.dll
    2016-05-24 16:31:55 ----A---- C:\WINDOWS\SysWOW64\webcheck.dll
    2016-05-24 16:31:55 ----A---- C:\WINDOWS\SysWOW64\jscript9.dll
    2016-05-24 16:31:55 ----A---- C:\WINDOWS\SysWOW64\iedkcs32.dll
    2016-05-24 16:31:54 ----A---- C:\WINDOWS\SysWOW64\inetcomm.dll
    2016-05-24 16:31:54 ----A---- C:\WINDOWS\SysWOW64\ieapfltr.dll
    2016-05-24 16:30:07 ----A---- C:\WINDOWS\SysWOW64\schannel.dll
    2016-05-24 16:30:07 ----A---- C:\WINDOWS\SysWOW64\ncrypt.dll
    2016-05-24 16:30:07 ----A---- C:\WINDOWS\SysWOW64\certcli.dll
    2016-05-24 16:30:04 ----A---- C:\WINDOWS\SysWOW64\WindowsCodecs.dll
    2016-05-24 16:30:04 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.dll
    2016-05-24 16:29:51 ----A---- C:\WINDOWS\SysWOW64\gdi32.dll
    2016-05-24 16:29:51 ----A---- C:\WINDOWS\SysWOW64\d3d10level9.dll
    2016-05-18 18:55:18 ----A---- C:\WINDOWS\SysWOW64\dsparse.dll
    2016-05-18 18:54:55 ----A---- C:\WINDOWS\SysWOW64\shacct.dll
    2016-05-18 18:54:53 ----A---- C:\WINDOWS\SysWOW64\rdpcore.dll
    2016-05-18 18:54:45 ----A---- C:\WINDOWS\SysWOW64\msv1_0.dll
    2016-05-18 18:54:37 ----A---- C:\WINDOWS\SysWOW64\webio.dll
    2016-05-18 18:54:37 ----A---- C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
    2016-05-04 17:36:58 ----D---- C:\Program Files (x86)\SourceTec
    2016-05-04 17:12:11 ----D---- C:\Program Files (x86)\Skillbrains

    ======List of files/folders modified in the last 1 month======

    2016-06-01 21:15:44 ----D---- C:\WINDOWS\Prefetch
    2016-06-01 21:13:22 ----D---- C:\WINDOWS\Temp
    2016-06-01 21:12:59 ----D---- C:\WINDOWS\Tasks
    2016-06-01 20:01:39 ----SHD---- C:\System Volume Information
    2016-06-01 20:01:04 ----D---- C:\WINDOWS\Microsoft.NET
    2016-06-01 19:55:43 ----RD---- C:\Users
    2016-06-01 19:44:12 ----D---- C:\Windows
    2016-06-01 19:42:50 ----D---- C:\WINDOWS\WinSxS
    2016-06-01 19:41:36 ----SD---- C:\WINDOWS\SysWOW64\GWX
    2016-06-01 19:40:14 ----D---- C:\AdwCleaner
    2016-06-01 19:34:52 ----D---- C:\Users\Helenka\AppData\Roaming\uTorrent
    2016-06-01 18:13:03 ----D---- C:\ProgramData\Qualcomm Atheros
    2016-06-01 18:13:03 ----D---- C:\ProgramData\OEM
    2016-06-01 18:13:03 ----D---- C:\ProgramData\install_clap
    2016-06-01 18:13:03 ----D---- C:\ProgramData\AmUStor
    2016-06-01 18:12:56 ----D---- C:\Users\Helenka\AppData\Roaming\.minecraft
    2016-06-01 18:12:55 ----D---- C:\ProgramData\PopCap Games
    2016-06-01 18:12:55 ----D---- C:\ProgramData\Atheros
    2016-06-01 18:12:54 ----HD---- C:\OEM
    2016-06-01 18:12:54 ----D---- C:\ProgramData\WildTangent
    2016-06-01 18:12:54 ----D---- C:\ProgramData\FLEXnet
    2016-06-01 18:12:54 ----D---- C:\ProgramData\EgisTec IPS
    2016-06-01 18:12:54 ----D---- C:\Dolby PCEE4
    2016-06-01 18:00:43 ----D---- C:\WINDOWS\Logs
    2016-06-01 17:34:01 ----D---- C:\WINDOWS\AppReadiness
    2016-06-01 17:28:58 ----D---- C:\WINDOWS\Inf
    2016-06-01 17:28:54 ----D---- C:\WINDOWS\Minidump
    2016-06-01 17:28:54 ----D---- C:\WINDOWS\debug
    2016-06-01 17:18:24 ----D---- C:\Users\Helenka\AppData\Roaming\Ahead
    2016-06-01 17:16:24 ----RD---- C:\Program Files (x86)
    2016-06-01 16:51:18 ----D---- C:\WINDOWS\System32
    2016-05-30 18:21:55 ----D---- C:\Program Files (x86)\Common Files
    2016-05-30 18:21:54 ----D---- C:\WINDOWS\SysWOW64
    2016-05-30 18:21:53 ----SHD---- C:\WINDOWS\Installer
    2016-05-30 18:21:50 ----D---- C:\ProgramData\Package Cache
    2016-05-30 18:21:25 ----RSD---- C:\WINDOWS\Fonts
    2016-05-30 15:21:20 ----D---- C:\WINDOWS\CbsTemp
    2016-05-25 20:24:20 ----RD---- C:\Program Files
    2016-05-25 20:24:19 ----D---- C:\ProgramData\Intel Security
    2016-05-25 20:22:14 ----HD---- C:\ProgramData
    2016-05-25 20:19:53 ----HD---- C:\WINDOWS\ELAMBKUP
    2016-05-24 17:53:44 ----D---- C:\WINDOWS\rescache
    2016-05-24 17:49:53 ----RSD---- C:\WINDOWS\assembly
    2016-05-24 17:09:02 ----D---- C:\Program Files (x86)\Internet Explorer
    2016-05-24 16:42:02 ----D---- C:\WINDOWS\SysWOW64\cs-CZ
    2016-05-24 16:14:49 ----D---- C:\WINDOWS\SysWOW64\wbem
    2016-05-15 12:11:55 ----D---- C:\Users\Helenka\AppData\Roaming\MMFApplications
    2016-05-11 22:08:17 ----A---- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 amdkmpfd;@oem25.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys []
    R1 ccSet_NARA;NARA Settings Manager; C:\WINDOWS\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys []
    R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys []
    R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys []
    R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys []
    R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys []
    R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys []
    R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys []
    R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys []
    R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys []
    R3 AthBTPort;@oem8.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys []
    R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys []
    R3 AtiHDAudioService;@oem17.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys []
    R3 BTATH_A2DP;@oem7.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys []
    R3 btath_avdt;@oem7.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys []
    R3 BTATH_BUS;@oem4.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys []
    R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys []
    R3 BTATH_LWFLT;@oem20.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys []
    R3 BTATH_RCP;@oem15.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys []
    R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys []
    R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys []
    R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys []
    R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys []
    R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys []
    R3 CnxtHdAudService;@oem22.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys []
    R3 ETD;@oem21.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys []
    R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys []
    R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys []
    R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys []
    R3 Ps2Kb2Hid;@oem20.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys []
    R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys []
    R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys []
    R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys []
    R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys []
    R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys []
    S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys []
    S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys []

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
    R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe []
    R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2016-03-02 83768]
    R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2013-01-28 227456]
    R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2012-10-25 2449552]
    R2 CxAudMsg;Conexant Audio Message Service; C:\Windows\system32\CxAudMsg64.exe []
    R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 33088]
    R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-08-21 348784]
    R2 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2012-08-15 3943104]
    R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2012-11-03 259136]
    R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2016-03-18 93296]
    R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
    S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-19 154440]
    S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 33088]
    S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-11-16 469648]
    S3 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2012-07-12 174160]
    S3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2012-10-23 658064]
    S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2016-03-18 655624]
    S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
    S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
    S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-19 154440]
    S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-09-12 643856]
    S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
    S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

    -----------------EOF-----------------

    Re: Špatnĕ funkční ntb

    Napsal: 01 čer 2016 20:25
    od Rudy
    Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

    Re: Špatnĕ funkční ntb

    Napsal: 01 čer 2016 20:45
    od Nela_M
    http://prntscr.com/bb5jxk

    Pořád něco čistí :(

    Re: Špatnĕ funkční ntb

    Napsal: 01 čer 2016 21:26
    od Rudy
    Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

    Re: Špatnĕ funkční ntb

    Napsal: 02 čer 2016 14:00
    od Nela_M
    Nenašlo to nic :x

    <?xml version="1.0" encoding="UTF-16"?>

    -<mbam-log>


    -<header>

    <date>2016/06/02 14:37:46 +0200</date>

    <logfile>mbam-log-2016-06-02 (14-37-40).xml</logfile>

    <isadmin>yes</isadmin>

    </header>


    -<engine>

    <version>2.2.1.1043</version>

    <malware-database>v2016.06.02.03</malware-database>

    <rootkit-database>v2016.05.27.01</rootkit-database>

    <license>free</license>

    <file-protection>disabled</file-protection>

    <web-protection>disabled</web-protection>

    <self-protection>disabled</self-protection>

    </engine>


    -<system>

    <hostname>DOMA</hostname>

    <ip>192.168.0.100</ip>

    <osversion>Windows 8.1</osversion>

    <arch>x64</arch>

    <username>Helenka</username>

    <filesys>NTFS</filesys>

    </system>


    -<summary>

    <type>threat</type>

    <result>completed</result>

    <objects>319692</objects>

    <time>1047</time>

    <processes>0</processes>

    <modules>0</modules>

    <keys>0</keys>

    <values>0</values>

    <datas>0</datas>

    <folders>0</folders>

    <files>0</files>

    <sectors>0</sectors>

    </summary>


    -<options>

    <memory>enabled</memory>

    <startup>enabled</startup>

    <filesystem>enabled</filesystem>

    <archives>enabled</archives>

    <rootkits>disabled</rootkits>

    <deeprootkit>disabled</deeprootkit>

    <heuristics>enabled</heuristics>

    <pup>enabled</pup>

    <pum>enabled</pum>

    </options>

    <items> </items>

    </mbam-log>

    Re: Špatnĕ funkční ntb

    Napsal: 02 čer 2016 14:02
    od Nela_M
    Ale celou dobu to dělalo tohle:

    Re: Špatnĕ funkční ntb

    Napsal: 02 čer 2016 17:28
    od Rudy
    Toto není ten správný log. Zkuste si pročíst toto: http://forum.viry.cz/viewtopic.php?f=29&t=144868 .

    Re: Špatnĕ funkční ntb

    Napsal: 03 čer 2016 13:44
    od Nela_M
    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Datum skenování: 3. 6. 2016
    Čas skenování: 14:14
    Protokol: MBAM.txt
    Správce: Ano

    Verze: 2.2.1.1043
    Databáze malwaru: v2016.06.02.03
    Databáze rootkitů: v2016.05.27.01
    Licence: Bezplatná verze
    Ochrana proti malwaru: Vypnuto
    Ochrana proti škodlivým webovým stránkám: Vypnuto
    Ochrana programu: Vypnuto

    OS: Windows 8.1
    CPU: x64
    Souborový systém: NTFS
    Uživatel: Helenka

    Typ skenu: Sken hrozeb
    Výsledek: Dokončeno
    Prohledaných objektů: 318724
    Uplynulý čas: 16 min, 10 sek

    Paměť: Zapnuto
    Po spuštění: Zapnuto
    Souborový systém: Zapnuto
    Archivy: Zapnuto
    Rootkity: Vypnuto
    Heuristika: Zapnuto
    PUP: Zapnuto
    PUM: Zapnuto

    Procesy: 0
    (Nenalezeny žádné škodlivé položky)

    Moduly: 0
    (Nenalezeny žádné škodlivé položky)

    Klíče registru: 0
    (Nenalezeny žádné škodlivé položky)

    Hodnoty registru: 0
    (Nenalezeny žádné škodlivé položky)

    Data registru: 0
    (Nenalezeny žádné škodlivé položky)

    Složky: 0
    (Nenalezeny žádné škodlivé položky)

    Soubory: 0
    (Nenalezeny žádné škodlivé položky)

    Fyzické sektory: 0
    (Nenalezeny žádné škodlivé položky)


    (end)

    Re: Špatnĕ funkční ntb

    Napsal: 03 čer 2016 17:59
    od Rudy
    Toto je OK, váš NB je bez malware. Zkuste obnovu systému k datu, kdy korektně fungoval.